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Sir: 

The present Amended Brief on Appeal is filed in connection with the Notice of Appeal 
dated March 22, 2004 and the Notification of Non-Compliance dated August 10, 2004 in the 
above-identified application. 

REAL PARTY IN INTEREST 
The real party in interest is Mandylion Labs, LLC, the assignee of all right, title and 
interest in the present application. 

RELATED APPEALS AND INTERFERENCES 
There are no other appeals or interferences known which will directly affect or be directly 
affected by or have a bearing on the Board's decision in the pending appeal. 
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STATUS OF CLAIMS 
Claims 33-54, the only claims pending, stand under final rejection and are currently 
appealed. 

STATUS OF AMENDMENTS 
An amendment containing a complete listing of pending claims and including changes to 
the claims was filed on February 20, 2004. The amendments to the claims were entered, but the 
Examiner did not find Appellant's remarks persuasive with regard to the patentability of the 
claims. 

SUMMARY OF INVENTION. 

The present invention is a portable device for generating and storing passwords and 
indicia representing password-secured sites, such as internet websites. Page 1, 11. 6-15. As seen 
generally in Fig. 1, the device is comparable in size to a keychain tag and, in fact, may be 
attached to a key ring in combination with a set of keys for ease of portability. 

The main portion of the device 10 is a portable body member 12 that houses the 
remaining elements of the invention, including a microprocessor 24 for integrating all of the 
electronic circuits and providing a display 28 for the user. Page 2, 11. 15-19; page 5, 11. 19-28; 
Fig. 1. The device 10 includes non-volatile memory 40 for storing a plurality of indicia inputted 
by a user. Fig. 1; Page 7, 11. 1-10. Each indicia is intended to be representative of a secure site, 
such as an internet website, that requires a user to have a password to gain access thereto. Page 
6, 11. 27-29. The device 10 further includes password circuitry 32 for generating a random 
password at the request of the user. Page 7, 11. 8-10. When an indicia is stored in non-volatile 
memory 40, a password is generated, displayed, and stored in conjunction with the indicia. Page 
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7, 11. 8-10. The user may then access the secure site via a host computer and configure the site 
represented by the indicia to accept the randomly generated password now stored in device 10. 
Page 7, 11. 12-22. 

A user may subsequently recall the password by accessing the device 10 and scrolling the 
display to find the appropriate indicia. The appropriate password is then displayed, thereby 
allowing the user to recall a password for a given secure site when he or she desires to gain 
access to the site. Page 7, 11. 4-16. The recalled password may be manually entered into the host 
computer or transmitted directly to the computer via an output communication port 30 of the 
device 10. Page 7, 11. 23-30. 

The device 10 also includes a biometric sensor 26 that generates a bionic template from 
the presentation of a fingerprint onto an input pad 1 8. When the device 10 is first initialized, the 
template from an authorized user's fingerprint is transmitted to the microprocessor 24 and stored 
in memory 38, such as SRAM. Page 3, 11. 23-26; page 6, 11. 20-22. In order to access a 
successfully initialized device 10, the authorized user again places his or her fingerprint on the 
input pad 18 and a new bionic template is generated by sensor 26 and compared to the initial 
template stored in memory 38. Page 3, In. 29 - page 4, In. 1. Access to the device is only 
allowed if the template fingerprint matches the subsequently presented fingerprint. Id. 

ISSUES 

Whether the claims, as represented by claim 45, are patentable over GB 2,274,184 to 
Mcintosh in view of U.S. Patent No. 5,944,824 to He or, alternatively, GB 2,274,1 84 to 
Mcintosh in view of U.S. Patent No. 5,732,138 to Noll. Whether claims 33-54 comply with the 
written description requirement. 
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GROUPING OF CLAIMS 
Appellant contends claim 45 is representative of the rejected claims, and that independent 
claims 33 and 52 (and all dependent claims) stand or fall therewith. 

ARGUMENT 

Appellant and the Examiner disagree primarily over the application of the legal standard 
of obviousness under 35 U.S.C. § 103(a). The Examiner rejected the claims of present 
application in light of two prior art combinations - either GB 2,274,1 84 to Mcintosh 
{"Mcintosh") in view of U.S. Patent No. 5,944,824 to He ("He"), or Mcintosh in view of U.S. 
Patent No. 5,732,138 to Noll ("Noll"). As will be explained in detail with regard to each 
rejection, the proposed combination is legally insufficient under 35 U.S.C. § 103(a) because it 
does not state & prima facie obviousness rejection. In particular, the proposed combination does 
not include every element of the claimed invention, and changes the principle operation of the 
device of Mcintosh to such a degree that it renders Mcintosh unsatisfactory for its intended 
purpose. 

I. IMPROPRIETY OF THE REJECTIONS IN LIGHT OF MCINTOSH AND 
HE. 

Several groups of claims have been rejected, in whole or in part, in view of Mcintosh and 
He. Independent claim 45 is representative thereof and is patentable over these references as 
described below. 

Independent claim 45 calls for a device comprising: (a) a portable body member; (b) a 
data storage source contained in said body member; (c) user interface and communication 
componentry for permitting an individual to store in said data storage source a plurality of 
indicia each one of which is representative of a secured site; and (d) password circuitry 
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comprising a random number generator for randomly generating a plurality of passwords, 
wherein each of said plurality of passwords is uniquely associated with a respective one of said 
plurality of indicia in sequence. By way of explanation, independent claim 33 calls for 
essentially the same structure in addition to structure that limits access to the device by using 
biometric information. Independent claim 53 recites a method of managing passwords on a 
device having the structure recited in claim 45. Thus, independent claims 33 and 53 rise or fall 
with claim 45. 

Both the Examiner and Appellant agree that Mcintosh discloses a portable device having 
a data storage source for storing indicia that a user can then associate with a password, and that 
Mcintosh also includes circuitry for generating a random sequence. In particular, Mcintosh 
discloses a portable device having data storage and user interface which allows a user to store an 
externally generated password in memory along with indicia representing a password-protected 
site that is associated with the password. Mcintosh, page 3, In. 38-44. Mcintosh further 
discloses circuitry for controlling access to the device, whereby an intended user must provide an 
access code to obtain access to the stored information. Mcintosh, page 3, In. 24-34. The device 
in Mcintosh also includes a random number generator which, in response to an intended user 
entering an improper access code, will generate and provide a "fake" password to mislead an 
unauthorized user into believing that he or she successfully accessed the device. Mcintosh, page 
4, In. 22-27. 

Mcintosh fails to show a device which generates a random password for an individual to 
use to access a protected site. The "fake" password generated in Mcintosh does not allow the 
unauthorized user to access any of the password-protected sites. Mcintosh, page 4, In. 41-46. 
Instead, the random sequence in Mcintosh is only generated and displayed when someone 
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improperly tries to gain access to the portable device, i.e., the password generator is only used to 
create a fake password so that someone who improperly gains access to the device will not be 
able to access a protected site. 

Appellant and the Examiner also agree that the secondary reference He teaches that 
random passwords are preferred over non-random passwords. He discloses a system for 
protecting the security of a computer network by standardizing the login procedures over all of 
the various nodes. In particular, He discloses a security system for enhancing the security of a 
computer network by using a security server that logs a user in to all network elements for which 
the user is authorized, thereby globalizing the user login procedure. He, col. 2, 11. 25-28. He is 
directed exclusively toward the security of network to node connections, and even discloses that 
the randomly generated network password "doesn't have to be known by the user." He, col. 7, II. 
65-66. The parameters for passwords, as well as the generation and storage of passwords, is 
controlled exclusively by the system password initialization module regardless of whether the 
password in chosen randomly or manually. He, col. 8, 11. 4-12. He is thus directed toward 
protecting inter-network security from electronic eavesdropping, and does not address security 
of the user-to-network connection. He, col. 7, 11. 42-47. By contrast, Mcintosh is directed to 
solely to improving the security of the user-to-network connection by protecting the accessibility 
of passwords stored in a user's personal device. More importantly, He does not teach allowing 
users to choose their own passwords, and definitely does not discuss how a user should handle 
personal password storage and retrieval. 
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A. The Proposed Combination Does Not Disclose Each and Every 
Element of the Claimed Invention 

According to the Examiner, the general teaching in He that random passwords are 
preferred over non-random passwords is sufficient to motivate the structural modification of 
Mcintosh to include a random password generating circuit to generate passwords for the user to 
gain access to the secure sites represented by the stored indicia, and therefore renders the claimed 
invention obvious under 35 U.S. C. § 103(a). The changes to Mcintosh proposed by the 
Examiner go far beyond the simple teaching in He that randomness of passwords is preferred for 
network security purposes. The Examiner proposes a structural modification to the user device 
in Mcintosh to generate passwords, rather than merely to store server generated passwords - the 
only function contemplated by Mcintosh, 

While He teaches that randomized passwords are beneficial for improving network 
security, the reference does not motivate or suggest generating randomized passwords at the user 
side or, more appropriately, at a user password storage device. This positioning of 
randomization at the user side is expressly recited in all of the rejected the claims, which call for 
the portable device to include circuitry for generating random passwords that are subsequently 
associated with indicia representing protected sites. 

He only discloses that it is preferable for a computer network to randomly generate 
network use only passwords. In fact, He states that a user need not know the network security 
password. The purported motivation from He has been taken out-of-context, and is insufficient 
to motivate the structural redesign of Mcintosh to accomplish an entirely different goal because 
He is limited to enhancing network security and does not apply to user security. See Bausch & 
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Lomb, Inc. v. Barnes-Hind/Hydrocurve, 796 F.2d 443 (Fed. Cir. 1986) (failure to consider 
reference in its entirety was improper when considering obviousness). 

The actual result one would reach by following the teaching in He demonstrates that the 
combination proposed by the Examiner does not disclose each and every element of the claimed 
invention as required by 35 U.S.C. § 103(a). In a system including the device of Mcintosh, He at 
best teaches that a network or server should generate random passwords. In the Examiner's 
proposed combination, He would only motivate a bank server, such as that disclosed in 
Mcintosh, to generate a randomized password and then send it to the account holder for storage 
in the device of Mcintosh. He lacks the necessary motivation, however, to alter the user's 
personal storage device to form the claimed invention, as He only teaches improving network 
security with randomized passwords generated exclusively at the server side, rather than the user 
side. 

Following is a schematic representation of Mcintosh and He illustrating how a proper 
combination of the teachings in each reference still would not form the claimed invention: 
System of Mcintosh: 
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The Examiner contends that this teaching of a randomized intra-network password is 
sufficient to motivate the proposed changes to the user storage device of Mcintosh. As the 
following diagram illustrates, a change according to He would not achieve the structure of 
claimed invention, as He only motivates randomizing by a server or network, not a user. 

Properly Modified Mcintosh according to He : 



Bank/ 
Network 


Randomized Password 
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password 

storage 

device 

(user) 
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PIN verified 


ATM 


" w 




< 

Enters PIN 



When Mcintosh is modified according to He, randomizing occurs at the bank (i.e., the 
server or network), rather than at the personal storage device. As He deals exclusively with the 
use of a randomized password to protect intra-network security, He at best only motivates a 
change in Mcintosh at the bank side of the schematic. Thus, the application of the motivation of 
He to Mcintosh does not result in a portable device including a random password generator, as 
proposed by the Examiner. Instead, the randomization must occur at the network level, as this is 
the location where He teaches randomness is preferred. The combination proposed by the 
Examiner thus does not result in a device that meets each and every limitation in claim 45 as 
required for a prima facie case of obviousness under 35 U.S.C. § 103(a). 

The creation of the password at the user side is an express limitation in claim 45, which 
recites that the claimed portable device includes " password circuitry for generating a plurality of 
passwords, wherein e ach of said plurality of passwords is uniquely associated with a respective 
one of said plurality of indicia " This express element in the claims clearly places the point of 
generation of the passwords at the portable device, rather than at the secure site to which the user 
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of the device wishes to gain access. Neither Mcintosh nor He motivate the generation of 

passwords at the user-side as recited in the claims, because the motivation in He relied on by the 

Examiner does not teach the desirability of making the specific combination set forth in claim 

45. In re Kotzab, 217 F.3d 1365, 1369-70 (Fed. Cir. 2000). The Examiner's rejection is 

therefore the product of impermissible hindsight analysis as the changes proposed to the device 

in Mcintosh are not motivated by He, but by Applicant's own disclosure. 

As explained by the court in In re Kotzab, 217 F.3d 1365, 1369-70 (Fed. Cir. 2000): 

Most if not all inventions arise from a combination of old 
elements. Thus, every element of a claimed invention may often 
be found in the prior art. However, identification in the prior art of 
each individual part claimed is insufficient to defeat patentability 
of the whole claimed invention. Rather, to establish obviousness 
based on a combination of the elements disclosed in the prior art, 
there must be some motivation, suggestion or teaching of the 
desirability of making the specific combination that was made by 
the applicant, (internal citations omitted) (emphasis added) 

The court in Kotzab subsequently overturned the Patent Office finding that the claimed 

invention covering a single sensor controlling multiple valves was obvious in light of the prior 

art disclosing multiple sensors controlling multiple valves. In particular, the court stated that: 

In this case, the Examiner and the Board fell into the hindsight 
trap. The idea of a single sensor controlling multiple valves, as 
opposed to multiple sensors controlling multiple valves, is a 
technologically simple concept. With this simple concept in mind, 
the Patent and Trademark Office found prior art statements that in 
the abstract appeared to suggest the claimed limitation. But, there 
was no finding as to the specific understanding or principle 
within the knowledge of a skilled artisan that would have 
motivated one with no knowledge of Kotzab f s invention to make 
the combination in the manner claimed. 

Id. at 1371 (emphasis added). Here, as the court in Kotzab said is often likely to 
occur, the Examiner found references that individually disclose many of the elements claimed by 
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the Appellant. The Examiner did not, however, properly identify how one of ordinary skill 
would be motivated to make the claimed combination, because the Examiner did not identify a 
specific motivation to randomize passwords at the user side for contemporaneous storage with 
indicia identifying the secure sites. Instead, the motivation identified by the Examiner (i.e., 
"random is better") is insufficient to support the Examiner's proposed structural modifications 
because He does not motivate the claimed combination of having a portable device perform the 
randomizing and storage of passwords. 

B. The Proposed Modification to Mcintosh Changes the Principle 
Operation of the Device and Renders it Useless for its Intended 
Purpose 

Even if the general teaching in He that randomness is better is sufficient to motivate the 
specific combination of elements recited in claims 33, 45 and 53, the alterations to the device 
disclosed in Mcintosh that are proposed by the Examiner would impermissibly change the 
principle operation of the device and render it unsatisfactory for its original purpose, in 
contravention of the requirement for a valid obviousness rejection. See MPEP § 2143. The mere 
fact that Mcintosh could be modified as proposed does not mean that the prior art actually 
suggests the modification. See In re Fritch, 972 F.2d 1260 (Fed. Cir. 1992). 

Mcintosh is concerned with storing the passwords associated with a protected site that are 
externally generated by the protected site and then provided to a user. If the device in Mcintosh 
were altered as suggested by the Examiner, however, it would create havoc with the ability of a 
user to access the systems disclosed in either Mcintosh and He. 

If the device in Mcintosh were changed to generate its own passwords, a user would no 
longer be able to access any of the password-protected sites, because the sites contemplated by 
Mcintosh and He control the identity of passwords, not the user. In He, for example, the network 
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administrator is responsible for setting the parameters of the passwords. He, col. 7, 11. 56-63. If 

a user generated his or her own password, this security feature would be lost. Moreover, a user 

of the device in Mcintosh that was modified to generate a password would not be able to access a 

site where the identity of the password was controlled entirely on the server side, as in the system 

disclosed in Mcintosh. While a user could certainly generate his or her own password, that 

password is ineffective because the server is entirely unaware of the new user-generated 

password. The modified device proposed by the Examiner would therefore not work in the very 

system addressed by Mcintosh. 

It is fundamental that a proposed modification should not render the prior art device 

unacceptable for its intended purpose or change its principal mode of operation. See MPEP § 

2143.01 (citing In re Gordon, 733 F.2d 900, 221 U.S.P.Q. 1 125 (Fed. Cir. 1984) and In re Ratti, 

270 F.2d 810, 123 U.S.P.Q. 349 (C.C.P.A. 1959)). The Examiner's proposed combination does 

just that, as it changes the device in Mcintosh in such a way that it will not work for its expressly 

intended purpose. Thus, even if the modification proposed by the Examiner is motivated by the 

general teaching in the prior art, the proposed combination would violate the standards required 

for a proper 35 U.S.C. § 103(a) combination and claim rejection. 

II. IMPROPRIETY OF THE REJECTIONS IN LIGHT OF MCINTOSH AND 
NOLL. 

In addition to the rejection of claims in light of Mcintosh and He, the Examiner has also 
rejected certain claims (as represented by claim 45) in view of Mcintosh and Noll. Noll, like He 
discussed above, simply describes an apparatus for creating random passwords and generally 
discloses that random passwords are better than non-random passwords. Noll, col. 1, 11. 45-52. 
While Noll teaches the general use of randomized passwords over non-randomized passwords to 
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improve security, it fails to provide the necessary motivation to modify the structure of the 

portable device of Mcintosh to include circuitry for generating random numbers for association 

with the indicia of secure sites, as presently claimed. As described with regard to He above, a 

general suggestion that a random password is better than a non-random password is legally 

insufficient to render the claimed invention obvious under Kotzab and the standard required by 

35 U.S.C. § 103(a), because it fails to motivate each and every element the claimed combination 

and results in a combination that is unfit for its principal purpose. 

III. IMPROPRIETY OF THE REJECTION OF THE CLAIMS FOR FAILING 
TO COMPLY WITH THE WRITTEN DESCRIPTION REQUIREMENT. 

Claim 45 calls for "password circuitry comprising a random number generator for 
generating a plurality of passwords, wherein each of said plurality of passwords is uniquely 
associated with a respective one of said plurality of indicia in sequence." The Examiner 
determined that this element could be interpreted to mean generating all of the passwords at the 
same time, associating all of the passwords with all of the indicia at the same time, and then 
storing all at once. As the specification only discloses generating a single password, associating 
that password with a single indicia, and then storing the password and indicia, the Examiner 
determined that the claim failed to comply with the written description requirement. 

In rejecting a claim under section 1 12, first paragraph, an examiner must set forth express 
findings of fact which: (1) identify the claim limitation at issue; and (2) establish a prima facie 
case by providing reasons why a person skilled in the art at the time the application was filed 
would not have recognized that the inventor was in possession of the invention as claimed in 
view of the disclosure of the application as filed. MPEP § 2163.04. 
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Here, the Examiner alleges that the claims are improper because they cover associating 
numerous passwords with numerous indicia all at once, when the disclosure only teaches 
sequential storage. Rather than identify a specific claim term or limitation not described in 
detail in the specification, the Examiner creates an "indefinite" limitation in a device claim by 
construing the claim to recite a way of using the claimed invention that is not disclosed in hac 
verba in the specification. This analysis is improper in two regards. 

First, section 1 1 2, paragraph 1 does not require an inventor to describe every possible 
way in which a claimed invention may be used. Such a requirement is untenable. For example, 
the inventor of a new pocketknife need not describe every way in which a user could whittle a 
block of wood to support claims directed toward the structure of the knife. 

Second, the Examiner's interpretation of the limitation at issue is erroneous given the 
plain language of the claim and the patent disclosure. The language in the claim clearly recites 
"each of said plurality of passwords is uniquely associated with a respective one of said plurality 
of indicia." The only reasonable interpretation of this language is that the claimed invention 
associates each password with one indicia, and not all of the passwords with all of the indicia all 
at once. This interpretation of the claim language is fully supported by the description of the 
invention in the specification. Nevertheless, Appellant added the limitation "in sequence" to the 
rejected claims to further clarify the operation of the claimed invention and obviate the written 
description rejection. 

CONCLUSION 

In conclusion, the rejection of the claims under 35 U.S.C. § 103(a) is improper as the 
modification proposed by the Examiner does not disclose each and every limitation of the 
claimed invention. Additionally, the proposed modification changes the principle operation of 
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the primary reference and renders it useless for its intended purpose. Finally, the rejection of the 
claims under 35 U.S.C. § 1 12, ^ 1 has not been properly applied, and has been overcome by 
Appellant through a post-final amendment entered by the Examiner. Reversal of the rejections 
in this Appeal is respectfully requested. 



Respectfully submitted, 



Dated: August 25, 2004 
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APPENDIX 

33. A device for use by an authorized individual having a unique biometric parameter 
to obtain information for use in accessing a secured site, the device comprising: 

a. a portable body member; 

b. a biometric interface unit engaged with said body member; 

c. a non-volatile memory mounted to said body member; 

d. biometric circuitry for generating and storing in said non-volatile memory 
an initialized biometric template upon presentment of the person's unique biometric parameter to 
said biometric interface unit, and generating a second biometric template upon subsequent 
presentment of the person's unique biometric parameter to said biometric interface unit; 

e. compare circuitry for enabling said device only if said second biometric 
template is substantially identical to said initialized biometric template; 

f. a data storage source; - 

g. user interface and communication componentry for permitting said 
individual to store in said data storage source a plurality of indicia each one of which is 
representative of a secured site; and 

h. password circuitry for generating a plurality of passwords, wherein each 
of said plurality of passwords is uniquely associated with a respective one of said plurality of 
indicia in sequence. 

34. The device according to claim 33, farther comprising indicia selection circuitry 
for permitting said individual to use said user interface and communications componentry to 
select one of said plurality of indicia when said device is enabled. 
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35. The device according to claim 34, further comprising recall circuitry for recalling 
from said data storage source the one of said passwords that corresponds with said selected one 
of said plurality of indicia. 

36. The device according to claim 35, further comprising output circuitry and a 
display mounted to said body member for visually displaying said password associated with said 
selected indicia. 

37. The device according to claim 36, further comprising an output communications 
port connected to said output circuitry for directly transmitting said password corresponding to 
said selected indicia to said secured site. 

38. The device according to claim 33, wherein said password circuitry comprises a 
random number generator. 

39. The device according to claim 33, wherein said biometric interface unit is a 
fingerprint reader. 

40. The device according to claim 33, wherein said user interface and 
communications componentry comprises means for communicating a preselected string of 
predetermined length of characters in said data storage source. 
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41 . The device according to claim 40, wherein said means for communicating a 
preselected string of predetermined length of characters in said data storage source comprises a 
plurality of arrow keys mounted to said portable body member which may be manipulated and 
actuated by said individual and which electronically communicate with said device upon 
actuation by said individual. 

42. The device according to claim 33, further comprising means for prompting said 
individual to change a password corresponding to a predetermined indicia after expiration of a 
predetermined period of time. 



43. The device according to claim 42, wherein said means for prompting said 
individual to change a password after expiration of a predetermined period of time comprises a 
clock and circuitry coupled thereto which actuates said device to display a predetermined 
message. 

44. The device according to claim 43, wherein said password circuitry will generate a 
new password and associate said new password with the corresponding one of said indicia for 
which said prompt was actuated. 



45. A device for use by an authorized individual to obtain information for use in 
accessing a secured site, the device comprising: 

a. a portable body member; 

b. a data storage source contained in said body member; 
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c. user interface and communication componentry for permitting said 
individual to store in said data storage source a plurality of indicia each one of which is 
representative of a secured site; and 

d. password circuitry comprising a random number generator for randomly 
generating a plurality of passwords, wherein each of said plurality of passwords is uniquely 
associated with a respective one of said plurality of indicia in sequence. 

46. The device according to claim 45, further comprising indicia selection circuitry 
for permitting said individual to use said user interface and communications componentry to 
select one of said plurality of indicia when said device is enabled. 

47. The device according to claim 46, further comprising recall circuitry for recalling 
from said data storage source the one of said passwords that corresponds with said selected one 
of said plurality of indicia. 

48. The device according to claim 47, further comprising output circuitry and a 
display mounted to said body member for visually displaying said password associated with said 
selected indicia. 

49. The device according to claim 48, further comprising an output communications 
port connected to said output circuitry for directly transmitting said password corresponding to 
said selected indicia to said secured site. 
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50. The device according to claim 45, further comprising means for prompting said 
individual to change a password corresponding to a predetermined indicia after expiration of a 
predetermined period of time. 

5 1 . The device according to claim 50, wherein said means for prompting said 
individual to change a password after expiration of a predetermined period of time comprises a 
clock and circuitry coupled thereto which actuates said device to display a predetermined 
message. 



52. The device according to claim 5 1 , wherein said password circuitry will generate a 
new password and associate said new password with the corresponding one of said indicia for 
which said prompt was actuated. 



53. A method for creating, storing, and managing a password, comprising the steps 

of: 

a. providing a device comprising a portable body member, a data storage 
source contained in said body member, user interface and communication componentry for 
permitting said individual to store in said data storage source a plurality of indicia each one of 
which is representative of a secured site, and password circuitry comprising a random number 
enerator for randomly generating a plurality of passwords, wherein each of said plurality of 
passwords is uniquely associated with a respective one of said plurality of indicia; 

b. entering preselected indicia representative of a secured site into said 
device in response to a prompt generated by said device; 
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c. instructing said device to randomly generate a string of characters of 
predetermined length that is representative of a password in response to a prompt generated by 
said device, wherein said password is uniquely associated with said indicia entered in step b; and 

d. repeating steps b and c in sequence for as many times as desired and 
permitted by said data storage source. 

54. The method of claim 53, further comprising the step of instructing said device to 
generate a replacement password for said password created in step c in response to a prompt 
displayed on said portable body member after a predetermined period of time since said 
password was created in step c. 
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